PT-2009-3241 · Wireshark+1 · Wireshark+1

Magnus Homann

·

Published

2009-02-16

·

Updated

2018-10-10

·

CVE-2009-0600

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Wireshark versions 0.99.6 through 1.0.5
Description The issue allows user-assisted remote attackers to cause a denial of service, resulting in an application crash, through a crafted Tektronix K12 text capture file. This can be achieved with a file containing exactly one frame.
Recommendations For Wireshark versions 0.99.6 through 1.0.5, consider avoiding the use of Tektronix K12 text capture files until a fix is available. As a temporary workaround, restrict the opening of capture files from untrusted sources to minimize the risk of exploitation.

Exploit

Fix

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-0600
RHSA-2009:0313
RHSA-2009_0313

Affected Products

Red Hat
Wireshark